Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Tue, 19 Jul 2011 00:06:15 +0200
From: Stefan Behte <craig@...too.org>
To: oss-security@...ts.openwall.com
Subject: Re: CVE request: vulnerability in FreeRADIUS (OCSP)

Hi,

>> Would you mind sharing that patch with us?
> 
> We would be willing to provide the patch to all Linux distributors
> but we do not want to release the patch publicly and wait for the
> official patch by the packet maintainer of FreeRADIUS.
> 

Then posting it to the new vendor-sec (linux-distros@...openwall.org)
sounds like the right thing to do. Gentoo complies to your requirements
and would like to get the patch directly, if you do not plan to send it
there.

Best regards,

Stefan Behte,
Gentoo Security

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.